Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 17 Dec 2012 12:42:18 +0000
From:      Hugo Silva <hugo@barafranca.com>
To:        Robert Watson <rwatson@FreeBSD.org>
Cc:        current@FreeBSD.org
Subject:   Re: Distributed audit daemon committed (was: svn commit: r243752 - in head: etc etc/defaults etc/mail etc/mtree etc/rc.d share/man/man4 usr.sbin usr.sbin/auditdistd (fwd))
Message-ID:  <50CF132A.9020804@barafranca.com>
In-Reply-To: <alpine.BSF.2.00.1212011512410.34256@fledge.watson.org>
References:  <alpine.BSF.2.00.1212011512410.34256@fledge.watson.org>

next in thread | previous in thread | raw e-mail | index | archive | help
On 12/01/12 15:15, Robert Watson wrote:
> 
> Dear all:
> 
> I've now committed the build glue required to install the recently
> merged Audit Distribution Daemon (auditdistd) contributed by the Pawel
> Dawidek, and sponsored by the FreeBSD Foundation.  This allows
> individual hosts generating audit trails to submit trails to a central
> audit server for review and safe keeping.  Part of the goal is to ensure
> that a host submitting trail data can't later modify the trails.  Pawel
> uses a variety of useful security- and resilience-related features such
> as TLS, Capsicum, etc, in auditdistd.  As the recent security incident
> in the FreeBSD.org cluster illustrated, having reliable and detailed
> audit trails makes a big difference in forensic work, and hopefully this
> will allow the FreeBSD Project (and our users) to do that better in the
> future.
> 
> Robert N M Watson
> Computer Laboratory
> University of Cambridge


Wonderful! Personally I think this is a very worthy addition to the
project and I would like to congratulate and thank everyone involved in
this work.



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?50CF132A.9020804>